in reply to Re^2: setuid - insecure dependancy with backticked cmd?
in thread setuid - insecure dependancy with backticked cmd?

oops ... so sorry ... I missed the whole setuid portion of that error message. Really doesn't matter tho, the problem is with tainted data being used.

-derby
  • Comment on Re^3: setuid - insecure dependancy with backticked cmd?

Replies are listed 'Best First'.
Re^4: setuid - insecure dependancy with backticked cmd?
by EvanK (Chaplain) on Apr 22, 2006 at 20:35 UTC
    yep, you're right on. i untainted some vars with a regex and its blazing along! ++, and thanks for the help! also thanks to thor

    __________
    Build a man a fire, and he'll be warm for a day. Set a man on fire, and he'll be warm for the rest of his life.
    - Terry Pratchett